PrivacySignal
Breach Critical

Prolific ransomware group behind SonicWall zero-day attacks

CyberScoop · · US Federal · Data Breaches

The INC ransomware group has been identified as the most aggressive actor exploiting two SonicWall zero-day vulnerabilities, chaining them together to steal and encrypt victim data for extortion. While INC was not the first group to use these flaws, it has been the most effective.

Why this matters: SonicWall appliances sit at the edge of corporate and government networks. They are firewalls and VPN gateways — the things meant to keep attackers out. When ransomware groups find and chain two zero-days in that layer, they do not need to trick an employee into clicking anything. They just walk in. Organizations running unpatched SonicWall gear should treat this as an active threat, not a future risk. The window between 'zero-day discovered' and 'your data encrypted' is getting very short.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Breach
CyberScoop · · US Federal

Coast Guard, FBI board US-bound foreign ships in order to probe for cyberattacks

The agencies issued a joint statement saying the “joint security boardings” came in response to “indications that the networks of both vessels were compromised.” The post Coast Guard, FBI board US-bound foreign ships in order to probe for cyberattacks appeared first on CyberScoop.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

The true cost of a ransomware attack, with and without BCDR

The ransom itself can be only a fraction of the total cost of a ransomware attack, with downtime, recovery, remediation, and legal obligations adding millions to the bill. Datto explains how a mature BCDR strategy can reduce downtime and provide a faster, more predictable path to recovery. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

xHealth Data Breach Affects 118,000 Individuals

zHealth, a software company that provides practice management and electronic health records tools to medical practices, has disclosed a data breach affecting approximately 118,000 people.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
DataBreaches.net · · International

Payroll system of mosques, madrasahs hit by ransomware; staff details potentially compromised

David Sun reports: The payroll system of mosques and madrasahs overseen by the Islamic Religious Council of Singapore (MUIS) has been hacked and held for ransom, The Straits Times has learnt. The SmartHRMS human resources (HR) system is supplied by Singapore-based software vendor Avelogic. The latest cybersecurity incident notice on Avelogic’s website, which was last... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →